* feat(webshop-orders): schema, types and error codes for the orders surface webshop_orders (order/refund rows, financial-freeze trigger, member select/update RLS, no DELETE) + webshop_store_settings (per-store payment method -> account map), source_type 'webshop_order', multi-store index drop, customer_country, and a one-time woo cursor reset so the switch-over backfills and cross-marks existing feed rows. Tables classified in the full-archive export; pg-real coverage for RLS, freeze and CHECK. Co-Authored-By: Claude Fable 5 <noreply@anthropic.com> * feat(webshop-orders): core service (ingest, booking lines) upsertWebshopOrders: two-phase order/refund upsert with FX enrichment, legacy-feed cross-marking, frozen-row protection and field-wise jsonb comparisons (Postgres does not preserve object key order). Booking-line builder: per-rate VAT split with SIGNED buckets (discounts book as revenue reductions), refund mirroring, 3740 residual, per-store account prefill, and advisory export/EU + OSS warnings. Co-Authored-By: Claude Fable 5 <noreply@anthropic.com> * feat(webshop-orders): API routes for list, booking, invoicing and mapping Booking is draft -> atomic claim -> commit (conditional link-back closes the concurrent double-book race; a lost claim cancels the voucher-free draft). Legacy-feed guard honors transactions.is_ignored on both the book and create-invoice paths. Invoice conversion reuses buildInvoiceWriteData for an unnumbered draft with dominant-rate fallback and drift-safe unit prices. Co-Authored-By: Claude Fable 5 <noreply@anthropic.com> * feat(webshop-orders): Orders page, booking/invoice dialogs and gated nav /orders lists per-store orders with status tabs (server-side filters), exception chips and one action per row. Booking dialog prefills from the per-store payment-method mapping with an opt-in remember; invoice dialog converts to a draft kundfaktura. The Order nav item renders only for companies with an active WooCommerce connection or existing order rows (Shopify deliberately excluded until its sync writes webshop_orders). Co-Authored-By: Claude Fable 5 <noreply@anthropic.com> * feat(woocommerce): switch the order sync to webshop_orders, multi-store The sync maps rich wc/v3 payloads (billing, line/shipping/fee taxes, refund allocations with parent-prorated VAT fallback) and upserts order rows instead of transactions-inbox rows; already-imported feed rows stay bookable and get cross-marked. Multi-store: several active connections per company, per-store panel cards with the account-mapping editor. Co-Authored-By: Claude Fable 5 <noreply@anthropic.com> * docs(webshop-orders): decision log entries and ratchet baseline Baseline moves DOWN only: naive-ore-round 638 -> 637 via roundOre adoption; hand-rolled invariants stay at 115 (ACCOUNT_NUMBER_RE imported, not inlined). Co-Authored-By: Claude Fable 5 <noreply@anthropic.com> * fix(webshop-orders): resolve PR #1525 review findings and CI failures Review batch (Superagent, CodeRabbit, Swedish compliance review): - Mutual-exclusion claims: booking guards invoice_id, invoice link-back guards journal_entry_id AND treats zero matched rows as the conflict it is (409 + rollback), closing both TOCTOU races. - Freeze v2 migration (20260812124858): the link columns themselves are protected: invoice links immutable, journal links clearable only while the entry is still a draft (the booking rollback path). - Scraped orgnr no longer auto-written to customers.org_number; rate fallback applies only on single-VAT-bucket orders; refunds get their own WEBSHOP_ORDER_REFUND_NOT_CONVERTIBLE code; VAT advisories outrank the invoice-mode hint in the booking dialog. - Ingest compares every synced field (billing corrections no longer drop as unchanged); sync guards absent refunds arrays; /sync aggregates per-store results; panel disables all cards while a request runs; orders page separates load failure from empty; account field explains itself. CI: regenerated skills/accounted-api; pg tests restructured for transaction-abort/rollback semantics + freeze-link coverage; unresolvable- expression ceiling 375 -> 378 with documented reason (partial-update payloads in ingest, shapes covered by unit tests). Declined: CodeRabbit docstring-coverage advisory (house style: comments only where the code cannot say it). Co-Authored-By: Claude Fable 5 <noreply@anthropic.com> --------- Co-authored-by: Claude Fable 5 <noreply@anthropic.com>
139 lines
5.2 KiB
TypeScript
139 lines
5.2 KiB
TypeScript
import { createClient } from '@supabase/supabase-js'
|
|
import { NextResponse } from 'next/server'
|
|
import { withCronContext } from '@/lib/api/with-cron-context'
|
|
import { errorResponse, errorResponseFromCode } from '@/lib/errors/get-structured-error'
|
|
import { hasCapability } from '@/lib/entitlements/has-capability'
|
|
import { CAPABILITY } from '@/lib/entitlements/keys'
|
|
import { loadExtensions } from '@/lib/extensions/loader'
|
|
import { extensionRegistry } from '@/lib/extensions/registry'
|
|
import { isWooCommerceConfigured } from '@/extensions/general/woocommerce/lib/credentials'
|
|
import { syncWooCommerceOrders } from '@/extensions/general/woocommerce/lib/order-sync'
|
|
import type { WooCommerceConnection } from '@/extensions/general/woocommerce/types'
|
|
|
|
export const maxDuration = 300
|
|
|
|
/**
|
|
* GET /api/extensions/woocommerce/orders/cron
|
|
* Nightly order sync for connections that opted in (transaction_sync_enabled):
|
|
* upserts each connected store's orders and refunds into webshop_orders
|
|
* (the Orders page), replacing the earlier transactions-inbox feed.
|
|
*
|
|
* Read-only against the stores, and it never posts to the journal: rows land
|
|
* unbooked; booking stays a human decision on the Orders page. Idempotent via
|
|
* the (company_id, external_id) unique index; overlap re-polls become status
|
|
* updates. Emits no events, so no ensureInitialized() is needed.
|
|
*/
|
|
export const GET = withCronContext('cron.woocommerce_order_sync', async (_request, ctx) => {
|
|
// Physical routes under app/api/extensions/<id>/ compile into EVERY build,
|
|
// including the core-with-zero-extensions one: the registry (generated from
|
|
// extensions.config.json) is what actually switches an extension on. A
|
|
// scheduled-but-disabled cron must fail visibly (503) instead of quietly
|
|
// doing the work anyway.
|
|
loadExtensions()
|
|
if (!extensionRegistry.get('woocommerce')) {
|
|
ctx.log.warn('woocommerce extension is not enabled; cron refused')
|
|
return NextResponse.json(
|
|
{ error: 'WooCommerce extension is not enabled', code: 'EXTENSION_DISABLED' },
|
|
{ status: 503 },
|
|
)
|
|
}
|
|
|
|
const supabaseUrl = process.env.NEXT_PUBLIC_SUPABASE_URL
|
|
const supabaseServiceKey = process.env.SUPABASE_SERVICE_ROLE_KEY
|
|
|
|
if (!supabaseUrl || !supabaseServiceKey) {
|
|
return errorResponseFromCode('INTERNAL_ERROR', ctx.log, {
|
|
requestId: ctx.requestId,
|
|
details: { reason: 'Missing Supabase configuration' },
|
|
})
|
|
}
|
|
if (!isWooCommerceConfigured()) {
|
|
return NextResponse.json({ message: 'WooCommerce not configured', processed: 0 })
|
|
}
|
|
|
|
const supabase = createClient(supabaseUrl, supabaseServiceKey)
|
|
|
|
const { data: connections, error: connError } = await supabase
|
|
.from('woocommerce_connections')
|
|
.select('*')
|
|
.eq('status', 'active')
|
|
.eq('transaction_sync_enabled', true)
|
|
.order('last_order_synced_at', { ascending: true, nullsFirst: true })
|
|
.limit(50)
|
|
|
|
if (connError) {
|
|
ctx.log.error('failed to fetch woocommerce connections', connError, {
|
|
message: connError.message,
|
|
code: connError.code,
|
|
})
|
|
return errorResponse(connError, ctx.log, { requestId: ctx.requestId })
|
|
}
|
|
|
|
if (!connections || connections.length === 0) {
|
|
return NextResponse.json({
|
|
message: 'No connections with transaction sync enabled',
|
|
processed: 0,
|
|
})
|
|
}
|
|
|
|
const startTime = Date.now()
|
|
const TIME_BUDGET_MS = 240_000 // leave a minute of margin inside maxDuration
|
|
// Shared with syncWooCommerceOrders: it stops between pages and persists
|
|
// its cursor, so a truncated connection resumes next night.
|
|
const deadlineMs = startTime + TIME_BUDGET_MS
|
|
|
|
const results: Array<{
|
|
connectionId: string
|
|
inserted: number
|
|
updated: number
|
|
status: 'synced' | 'revoked' | 'error'
|
|
}> = []
|
|
|
|
for (const connection of connections as WooCommerceConnection[]) {
|
|
if (Date.now() >= deadlineMs) {
|
|
ctx.log.info('time budget reached', { processedSoFar: results.length })
|
|
break
|
|
}
|
|
|
|
if (!(await hasCapability(supabase, connection.company_id, CAPABILITY.woocommerce_sync))) {
|
|
ctx.log.info('skip: capability not entitled', { companyId: connection.company_id })
|
|
continue
|
|
}
|
|
|
|
try {
|
|
const summary = await syncWooCommerceOrders(supabase, connection, ctx.log, deadlineMs)
|
|
if (summary.deadlineReached) {
|
|
ctx.log.info('connection stopped early on time budget; remaining rows resume next run', {
|
|
connectionId: connection.id,
|
|
})
|
|
}
|
|
results.push({
|
|
connectionId: connection.id,
|
|
inserted: summary.inserted,
|
|
updated: summary.updated,
|
|
status: summary.revoked ? 'revoked' : 'synced',
|
|
})
|
|
} catch (error) {
|
|
ctx.log.error('woocommerce order sync failed for connection', error as Error, {
|
|
connectionId: connection.id,
|
|
companyId: connection.company_id,
|
|
})
|
|
results.push({
|
|
connectionId: connection.id,
|
|
inserted: 0,
|
|
updated: 0,
|
|
status: 'error',
|
|
})
|
|
}
|
|
}
|
|
|
|
const totalInserted = results.reduce((acc, r) => acc + r.inserted, 0)
|
|
ctx.log.info('woocommerce order sync summary', {
|
|
processed: results.length,
|
|
totalInserted,
|
|
failed: results.filter((r) => r.status === 'error').length,
|
|
})
|
|
|
|
return NextResponse.json({ processed: results.length, inserted: totalInserted, results })
|
|
})
|